Privacy & Cookie Policy

Privacy Policy and Cookie Policy

 

This Privacy Policy sets out how we, Seven Hills Crafts Ltd, collect, store and use information about you when you use or interact with our website, www.sevenhillscrafts.co.uk (our website) and where we otherwise obtain or collect information about you. This Privacy Policy is effective from 19th March 2024

 

Our details

The data controller in respect of our website is Seven Hills Crafts Ltd (company registration number 9751362) of 602 Loxley Road, Sheffield, S6 6RU, United Kingdom.  You can contact the data controller by writing to Data Controller, Seven Hills Crafts Ltd 602 Loxley Road, Sheffield, S6 6RU, United Kingdom or sending an email to sales@sevenhillscrafts.co.uk for the attention of the “Data Controller”.  If you have any questions about this Privacy Policy, please contact the data controller.

 

Web server log information

We use a dedicated rented server to host our website, this is managed by ANS Limited, their details and policies are available here https://www.ans.co.uk/terms-and-conditions/privacy-policy/    Our server is located in the UK.

 

  • How we collect or obtain information about you:
    • when you provide it to us e.g. by contacting us, placing an order on our website or signing up to our e-newsletter
    • from your use of our website, using cookies, and
    • occasionally from third parties.

 

  • Information we collect: name, contact details,  IP address, information from cookies, information about your computer or device (e.g. device and browser type), information about how you use our website (e.g. which pages you have viewed, the time when you view them and what you clicked on), the geographical location from which you accessed our website (based on your IP address), company name or business name (if applicable), VAT number (if applicable).

 

Information We Collect

Our Reasons (Legal Basis)

Our Explanation of our Legal Requirements

Name, Billing and Shipping Address, Email Address, Contact Telephone Number and passwords

Legitimate Interest / Fulfilling a Contract

For the purposes of processing and shipping orders.  Updating order status.  Managing your account and providing customer services.  Details may be passed to 3rd party delivery partners for the purpose of order delivery.   Registered accounts facilitate the efficient operation of our business and delivery or your orders.

Email (direct or via online contact form)

Legitimate Interest

Where you contact us via email, any information contained within the email or signature block may be used to form a contract (with relation to an existing order) or to provide you with information prior to providing you with our goods and services or answering questions contained in emails.

Information about your computer or device and browser type.

Legitimate Interest

To gain a better understanding of what our website visitors want (in terms of the content of our website and our products), how to improve our website and how to advertise and market our services to them.

 

Name and Email for newsletter subscribers

Legitimate Interest

For direct marketing purposes, notifying you of updates or issues with the website, undertaking customer satisfaction surveys or inviting you to undertake market research..  You consent to receive news and offers when you sign-up to our newsletter.  You can unsubscribe at any time.

We use a third party service to send out our e-newsletter and administer our mailing list called Mailcimp. Their legal policy can be accessed from the link below:  https://mailchimp.com/legal/

Web server logs

Legal Obligation

For the purposes of ensuring network and information security.  Unless we are investigating suspicious or criminal activity, we do not make, nor do we allow our hosting provider to identify you from information collected via server logs

Payment Information

Legitimate Interest

We do not store any information relation to your payments on our webite.   All payments are taken via PayPal.  PayPal collects, uses and processes your information, including payment information, in accordance with their privacy policies.  You can access their privacy policy here  https://www.paypal.com/uk/webapps/mpp/ua/privacy-full

Google Analytics and cookies

Legitimate Interest

Information collected by Google Analytics (your IP address and actions you take in relation to our website) is transferred outside the EEA and stored on Google’s servers. You can access Google’s privacy policy here: https://www.google.com/policies/privacy/

Country of storage: United States of America. This country is not subject to an adequacy decision by the European Commission.

Safeguard(s) used: Google has self-certified its compliance with the EU-U.S. Privacy Shield which is available here: https://www.privacyshield.gov/welcome. The EU-U.S. Privacy Shield is an approved certification mechanism under Article 42 of the General Data Protection Regulation, which is permitted under Article 46(2)(f) of the General Data Protection Regulation. You can access the European Commission decision on the adequacy of the EU-U.S. Privacy Shield here: http://ec.europa.eu/justice/data-protection/international-transfers/adequacy/index_en.htm

We use cookies to assist with the smooth running of our business, and to analyse shopping habits for business planning purposes.

 

  • How we use your information: for administrative and business purposes (particularly to contact you and process orders you place on our website), to improve our business and website, to fulfil our contractual obligations, to advertise our goods and services, to analyse your use of our website, and in connection with our legal rights and obligations.

 

  • Disclosure of your information to third parties: only to the extent necessary to run our business, to our service providers, to fulfil any contracts we enter into with you, where required by law or to enforce our legal rights.

 

  • Do we sell your information to third parties (other than in the course of a business sale): No.

 

  • How long we retain your information: for no longer than necessary, taking into account any legal obligations we have (e.g. to maintain records for tax purposes), any other legal basis we have for using your information (e.g. your consent, performance of a contract with you or our legitimate interests as a business).  When you place an order for goods and services, we retain that information for six years following the end of the financial year in which you placed your order, in accordance with our legal obligation to keep records for tax purposes under paragraph 6, Schedule 11 of the Value Added Tax Act 1994.

 

  • How we secure your information: using appropriate technical and organisational measures such as storing your information on secure servers, encrypting transfers of data to or from our servers using Secure Sockets Layer (SSL) technology.

 

  • Use of cookies and similar technologies: we use cookies and similar information-gathering technologies such as web beacons on our website including essential, functional, analytical and targeting cookies. You can reject some or all of the cookies we use on or via our website by changing your browser settings, but doing so can impair your ability to use our website or some or all of its features. For further information about cookies, including how to change your browser settings, please visit allaboutcookies.org or see our cookies policy below.

 

  • Transfers of your information outside the European Economic Area: in certain circumstances we may transfer your information outside of the European Economic Area including the USA. Where we do so, we will ensure appropriate safeguards are in place, the only time we normally do this is in order to enable our shipping agents to successfully delivery your order or for replacement products to be shipped directly from the brands we carry in store.

 

  • Use of automated decision making and profiling: we use automated decision making and profiling. In our email newsletters, if you’ve chosen to receive them, we will use data regarding your product preferences to determine the order we present the product banners, which products to present, through the use of use of web analytics, cookies, web beacons or server logs analysis tools (profiling).

 

  • Your rights in relation to your information
    • to access your information and to receive information about its use
    • to have your information corrected and/or completed
    • to have your information deleted
    • to restrict the use of your information
    • to receive your information in a portable format
    • to object to the use of your information
    • to withdraw your consent to the use of your information
    • to complain to a supervisory authority

 

  • Sensitive personal information: ‘Sensitive personal information’ is information about an individual that reveals their racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, genetic information, biometric information for the purpose of uniquely identifying an individual, information concerning health or information concerning a natural person’s sex life or sexual orientation.  We do not knowingly or intentionally collect sensitive personal information from individuals, and you must not submit sensitive personal information to us. If, however, you inadvertently or intentionally transmit sensitive personal information to us, you will be considered to have explicitly consented to us processing that sensitive personal information under the General Data Protection Regulation.  We will use and process your sensitive personal information for the purposes of deleting it.

 

  

If you have any concerns about our use of your personal information, you can make a complaint to us by writing to Data Controller, Seven Hills Crafts Ltd 602 Loxley Road, Sheffield, S6 6RU, United Kingdom or sending an email to sales@sevenhillscrafts.co.uk for the attention of the “Data Controller”. 

 

You can also complain to the Information Commissioner’s Office (ICO) by writing to them at Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF.  By contacting their helpline on 0303 123 1113.  Or via their website https://www.ico.org.uk
 

Changes to our Privacy Policy

We may update and amend our Privacy Policy from time to time.

Where we make changes to our Privacy Policy, we will update our Privacy Policy with a new effective date stated at the beginning of it. Our processing of your information will be governed by the practices set out in that new version of the Privacy Policy from its effective date onwards.

 

California Do Not Track Disclosures

“Do Not Track” is a privacy preference that users can set in their web browsers. When a user turns on a Do Not Track signal in their browser, the browser sends a message to websites requesting that they do not track the user. For information about Do Not Track, please visit www.allaboutdnt.org

At this time, we do not respond to Do Not Track browser settings or signals. In addition, we use other technology that is standard to the internet, such as pixel tags, web beacons, and other similar technologies, to track visitors to the website. Those tools may be used by us and by third parties to collect information about you and your internet activity, even if you have turned on the Do Not Track signal. For information on how to opt out from tracking technologies used on our website, see our cookies policy which is available below.

 

Links to other websites

Our website may contain links to other websites of interest. However, once you have used these links to leave our site, you should note that we do not have any control over that other website. Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites and such sites are not governed by this privacy statement. You should exercise caution and look at the privacy statement applicable to the website in question.

 

Seven Hills Crafts Cookie Policy

How we use cookies

A cookie is a small file which asks permission to be placed on your computer's hard drive. Once you agree, the file is added and the cookie helps analyse web traffic or lets you know when you visit a particular site. Cookies allow web applications to respond to you as an individual. The web application can tailor its operations to your needs, likes and dislikes by gathering and remembering information about your preferences.

We use traffic log cookies to identify which pages are being used. This helps us analyse data about web page traffic and improve our website in order to tailor it to customer needs. We only use this information for statistical analysis purposes and then the data is removed from the system.

Overall, cookies help us provide you with a better website, by enabling us to monitor which pages you find useful and which you do not. A cookie in no way gives us access to your computer or any information about you, other than the data you choose to share with us. You can choose to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies if you prefer. This may prevent you from taking full advantage of the website.

List of cookies we collect:

Essential Cookies

Necessary cookies enable core functionality of the website. Without these cookies the website can not function properly. They help to make a website usable by enabling basic functionality.

Cookie Name

Cookie Provider

Cookie Description

Cookie Type

PHPSESSID

Magento

To store the logged in user's username and a 128bit encrypted key. This information is required to allow a user to stay logged in to a web site without needing to submit their username and password for each page visited. Without this cookie, a user is unable to proceed to areas of the web site that require authenticated access.

1st Party

private_content_version

Magento

Appends a random, unique number and time to pages with customer content to prevent them from being cached on the server.

1st Party

persistent_shopping_cart

Magento

Stores the key (ID) of persistent cart to make it possible to restore the cart for an anonymous shopper.

1st Party

form_key

Magento

A security measure that appends a random string to all form submissions to protect the data from Cross-Site Request Forgery (CSRF).

1st Party

store

Magento

Tracks the specific store view / locale selected by the shopper.

1st Party

login_redirect

Magento

Preserves the destination page the customer was navigating to before being directed to log in.

1st Party

mage-messages

Magento

Tracks error messages and other notifications that are shown to the user, such as the cookie consent message, and various error messages, The message is deleted from the cookie after it is shown to the shopper.

1st Party

mage-cache-storage

Magento

Local storage of visitor-specific content that enables e-commerce functions.

1st Party

mage-cache-storage-section-invalidation

Magento

Forces local storage of specific content sections that should be invalidated.

1st Party

mage-cache-sessid

Magento

The value of this cookie triggers the cleanup of local cache storage.

1st Party

product_data_storage

Magento

Stores configuration for product data related to Recently Viewed / Compared Products.

1st Party

 

Marketing

Marketing cookies are used to track and collect visitors actions on the website. Cookies store user data and behaviour information, which allows advertising services to target more audience groups. Also more customized user experience can be provided according to collected information.

 

Cookie Name

Cookie Provider

Cookie Description

Cookie Type

recently_viewed_product

Magento

Stores product IDs of recently viewed products for easy navigation.

1st Party

recently_viewed_product_previous

Magento

Stores product IDs of recently previously viewed products for easy navigation.

1st Party

recently_compared_product

Magento

Stores product IDs of recently compared products.

1st Party

recently_compared_product_previous

Magento

Stores product IDs of previously compared products for easy navigation.

1st Party

 

Analytics

A set of cookies to collect information and report about website usage statistics without personally identifying individual visitors to Google.

Cookie Name

Cookie Provider

Cookie Description

Cookie Type

_ga

Google Analytics

Used to distinguish users.

3rd Party

_gid

Google Analytics

Used to distinguish users.

3rd Party

_gat

Google Analytics

Used to throttle request rate.

3rd Party